When processing subtitles format media file, KMPlayer version 2018.12.24.14 or lower doesn't check object size correctly, which leads to integer underflow then to memory out-of-bound read/write. An attacker can exploit this issue by enticing an unsuspecting user to open a malicious file.
References
Configurations
History
03 Nov 2021, 19:49
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:* |
|
References | (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VT5HBIKH64YRZFFAPXGOTHIQJHSTQJF7/ - Mailing List, Third Party Advisory | |
References | (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4D55BLGBNWNIMNI5N57WDPAFQCUIM6XX/ - Mailing List, Third Party Advisory |
Information
Published : 2019-04-09 18:29
Updated : 2024-02-04 20:20
NVD link : CVE-2019-9133
Mitre link : CVE-2019-9133
CVE.ORG link : CVE-2019-9133
JSON object : View
Products Affected
microsoft
- windows
kmplayer
- kmplayer
fedoraproject
- fedora